CN107563181A - A kind of verification method and system for clicking graphical verification code - Google Patents

A kind of verification method and system for clicking graphical verification code Download PDF

Info

Publication number
CN107563181A
CN107563181A CN201711003786.2A CN201711003786A CN107563181A CN 107563181 A CN107563181 A CN 107563181A CN 201711003786 A CN201711003786 A CN 201711003786A CN 107563181 A CN107563181 A CN 107563181A
Authority
CN
China
Prior art keywords
information
checking
verification code
targeted customer
graphical verification
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201711003786.2A
Other languages
Chinese (zh)
Inventor
包琼林
胡文彬
危明武
钟娜
刘祥涛
赵彦晖
孙淏添
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Electronic Invoice Marketing Data Services Ltd
Original Assignee
Electronic Invoice Marketing Data Services Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Electronic Invoice Marketing Data Services Ltd filed Critical Electronic Invoice Marketing Data Services Ltd
Priority to CN201711003786.2A priority Critical patent/CN107563181A/en
Publication of CN107563181A publication Critical patent/CN107563181A/en
Pending legal-status Critical Current

Links

Landscapes

  • Information Transfer Between Computers (AREA)

Abstract

The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing the checking of multi-application system graphical verification code, simplifies user's operation, improves the security of checking.Method includes:The checking request that different application end background system is sent is received, graphical verification code parameter information is included in checking request;Targeted graphical identifying code is generated according to graphical verification code parameter information and corresponding clicks operation instruction information and intended application end background system corresponding to being sent to;Checking information corresponding to operation instruction information is preserved, checking information includes point selection operation initialization step information and pre-set co-ordinate information;Receive intended application end background system feedback clicks operation information, clicks operation information and is generated according to targeted customer's clicking operating procedure and clicking coordinate information on graphical verification code;Judgement clicks whether operation information matches with checking information, if matching, judges that targeted customer is proved to be successful, if mismatching, judges targeted customer's authentication failed.

Description

A kind of verification method and system for clicking graphical verification code
Technical field
The present invention relates to technical field of network security, more particularly to a kind of verification method for clicking graphical verification code and it is System.
Background technology
Graphical verification code on website or Internet application system Interactive Web Page (such as log in page), is shown with pictorial manner Random random verification code verified, rogue program or automated procedures can not be bypassed this identifying code and carried out Repeated attempt is verified, improves Brute Force difficulty, thus is widely used by various network application systems.
Often it is manually entered in existing graphical verification code scheme in existing graphical verification code scheme using checking user Character and the mode of the character integrity in graphical verification code are verified, for example, word compares or numeral is than equity, every suit The application system of graphical verification code is needed often individually to develop a set of graphical verification code scheme, different application systems is corresponding different Graphical verification code scheme.
, it is necessary to which user is manually entered the character in graphical verification code in existing scheme, when character is more, input operation is numerous It is trivial, secondly, need to transmit the character of user's input in verification process, character has in transmitting procedure by rogue program identification Risk, again, every suit need the application system of graphical verification code to need individually to develop a set of graphical verification code scheme, work as application When system is more, overlapping development graphical verification code scheme, development cost and network system resources are wasted.
The content of the invention
The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing multiple applications The graphical verification code checking of system, simplifies user's checking operation, improves the security of checking.
First aspect of the embodiment of the present invention provides a kind of verification method for clicking graphical verification code, it may include:
The checking request that different application end background system is sent is received, graphical verification code parameter is included in the checking request Information;
According to the graphical verification code parameter information generate targeted graphical identifying code and it is corresponding click operation instruction information, And intended application end background system corresponding to being sent to;
Checking information corresponding to the operation instruction information is preserved, the checking information includes point selection operation initialization step letter Breath and pre-set co-ordinate information;
Receive intended application end background system feedback clicks operation information, and the operation information that clicks is according to target User's clicking operating procedure and clicking coordinate information on the graphical verification code generates;
Click whether operation information matches with the checking information described in judgement, if matching, judges the targeted customer It is proved to be successful, if mismatching, judges targeted customer's authentication failed.
Optionally, it is described that figure is generated according to the graphical verification code parameter information as a kind of possible embodiment Identifying code and it is corresponding click operation instruction information, including:
One is randomly selected from context vault with the Target Photo that the graphical verification code parameter information matches as the back of the body Scape picture, and draw speckle patterns at random on the background picture;
The Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;
Font information corresponding to Chinese character random selection in respectively described first set, and will according to the font information Corresponding Chinese character is plotted in different interim painting canvas, the font information include font size, font style, font color, One or more in the font anglec of rotation;
Randomly choose the canvas coordinate point of first preset number on the background picture, and by the interim painting canvas It is plotted to respectively at the canvas coordinate point, forms graphical verification code;
The different Chinese character of the second preset number is randomly selected in sequence from the first set as target characters shape Into second set;
The graphical verification code pair is sequentially generated according to target characters in the second set and in the second set That answers clicks operation instruction information.
Optionally, as a kind of possible embodiment, the interim painting canvas is plotted to the painting canvas respectively described Before at coordinate points, methods described also includes:
By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
Optionally, as a kind of possible embodiment, the interim painting canvas is plotted to the painting canvas respectively described After at coordinate points, methods described also includes:
The point coordinates of preset number is generated at random in the background picture, and according to different font informations in the back of the body Noise corresponding to generation in scape picture;
According to the font color of the target characters, the straight of different length is drawn with approximate color in the target characters Line or curve include solid line, dotted line, the class style of strigula three as interfering line, the species of the interfering line.
Optionally, as a kind of possible embodiment, the judgement click operation information whether with the checking information Matching, including:
If the coordinate for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer Point mismatches, or, the sequencing for clicking coordinate points of the point selection operation of the targeted customer and the mesh in the second set The order for marking Chinese character mismatches, then whether decision-point selection operation information mismatches with the checking information;
If the coordinate for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer Point match, and the targeted customer point selection operation the sequencing for clicking coordinate points whether with the second set The order of target characters matches, then clicks whether operation information matches with the checking information described in judgement.
Second aspect of the embodiment of the present invention provides a kind of checking system for clicking graphical verification code, it is characterised in that bag Include:
At least one application end background system, application end foreground system, authentication server, wherein,
The authentication server includes the first receiving module, the checking sent for receiving different application end background system Ask, graphical verification code parameter information is included in the checking request;
The authentication server also includes generation module, for generating figure according to the graphical verification code parameter information Identifying code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;
The authentication server also includes memory module, and letter is verified corresponding to the operation instruction information for preserving Breath, the checking information include point selection operation initialization step information and pre-set co-ordinate information;
The application end background system is used for the operation information that clicks for receiving corresponding application end foreground system transmission, described Operation information generates according to targeted customer's clicking operating procedure and clicking coordinate information on the graphical verification code;
The authentication server also includes the second receiving module, for receiving intended application end background system feedback Described click operation information;
The authentication server also includes judge module, for judge it is described click operation information whether with the checking Information matches, if matching, judges that the targeted customer is proved to be successful, if mismatching, judge that the targeted customer verifies and lose Lose.
Optionally, as a kind of possible embodiment, the generation module, including:
First choice unit, match for randomly selecting one from context vault with the graphical verification code parameter information Target Photo as background picture, and on the background picture at random draw speckle patterns;
Second selecting unit, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first set;
3rd selecting unit, for being respectively font information corresponding to the Chinese character random selection in the first set, and Corresponding Chinese character is plotted in different interim painting canvas according to the font information, the font information include font size, One or more in font style, font color, the font anglec of rotation;
First generation unit, for randomly choosing the canvas coordinate of first preset number on the background picture Point, and the interim painting canvas is plotted at the canvas coordinate point respectively, generate graphical verification code;
4th selecting unit, for randomly selecting the different Chinese of the second preset number in sequence from the first set Word forms second set as target characters;
Second generation unit, for being sequentially generated according to target characters in the second set and in the second set Operation instruction information is clicked corresponding to the graphical verification code.
Optionally, also include as a kind of possible embodiment, the generation module:
Painting canvas processing unit, for it is described the interim painting canvas is plotted at the canvas coordinate point respectively before, By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
Optionally, also include as a kind of possible embodiment, the generation module:
Noise generation unit, for generating the point coordinates of preset number at random in the background picture, and according to different Font information generated in the background picture corresponding to noise;
Interfering line generation unit, for the font color according to the target characters, with approximation in the target characters Color draws the straight line of different length or curve includes solid line, dotted line, strigula three as interfering line, the species of the interfering line Class style.
Optionally, as a kind of possible embodiment, the judge module, including:
First judging unit, if the point selection operation of the targeted customer clicks coordinate points and the mesh in the second set The coordinate points for marking Chinese character mismatch, or, the sequencing for clicking coordinate points and described the of the point selection operation of the targeted customer The order of target characters in two set is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;If The coordinate points for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer match, and The targeted customer point selection operation the sequencing for clicking coordinate points whether with the target characters in the second set Order matches, then click operation information described in judgement matches with the checking information;
Second judging unit, if the operation information that clicks matches with the checking information, judge that the target is used Family is proved to be successful, if the operation information that clicks mismatches with the checking information, judges targeted customer's authentication failed.
As can be seen from the above technical solutions, the embodiment of the present invention has advantages below:
In the embodiment of the present invention, authentication server can be according in the checking request that different application end background system is sent Comprising graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing side Case, multiple application systems can share a set of checking system in the embodiment of the present invention, save development cost and network system resources, Corresponding intended application end background system can be to authentication server feedback target user clicking on graphical verification code Operating procedure generation clicks operation information, and the authentication server can judge that targeted customer clicks according to operation information is clicked Whether operation matches with checking information, and then determines that whether targeted customer is proved to be successful, and relative to existing scheme, only needs user A selection operation is carried out, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, nothing in verification process Need to input with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is tested The difficulty of card process, and then add the security of graphical verification code verification process.
Brief description of the drawings
Fig. 1 is a kind of one embodiment schematic diagram for the verification method for clicking graphical verification code in the embodiment of the present invention;
Fig. 2 is the refinement step schematic diagram of step 200 in Fig. 1;
Fig. 3 is that the specific of midpoint of embodiment of the present invention selection operation configured information uses example schematic;
Fig. 4 is one of a kind of verification method for clicking graphical verification code in the embodiment of the present invention and specifically illustrated with example Figure;
Fig. 5 is a kind of one embodiment schematic diagram for the checking system for clicking graphical verification code in the embodiment of the present invention;
Fig. 6 is one of generation module 502 thin in a kind of checking system for clicking graphical verification code in the embodiment of the present invention Change high-level schematic functional block diagram;
Fig. 7 be in the embodiment of the present invention in a kind of checking system for clicking graphical verification code generation module 502 another Refine high-level schematic functional block diagram;
Fig. 8 is a kind of refinement work(of judge module 504 in checking system for clicking graphical verification code in the embodiment of the present invention Can module diagram.
Embodiment
The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing multiple applications The graphical verification code checking of system, simplifies user's operation, improves Consumer's Experience.
In order that those skilled in the art more fully understand the present invention program, below in conjunction with the embodiment of the present invention Accompanying drawing, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that described embodiment is only The embodiment of a part of the invention, rather than whole embodiments.Based on the embodiment in the present invention, ordinary skill people The every other embodiment that member is obtained under the premise of creative work is not made, it should all belong to the model that the present invention protects Enclose.
Term " first ", " second ", " the 3rd " in description and claims of this specification and above-mentioned accompanying drawing, " Four " etc. be for distinguishing similar object, without for describing specific order or precedence.It should be appreciated that so use Data can exchange in the appropriate case, so that the embodiments described herein can be with except illustrating or describing herein Order beyond appearance is implemented.In addition, term " comprising " and " having " and their any deformation, it is intended that covering is non-exclusive Include, be not necessarily limited to clearly arrange for example, containing the process of series of steps or unit, method, system, product or equipment Those steps or unit gone out, but may include not list clearly or consolidate for these processes, method, product or equipment The other steps or unit having.
In order to make it easy to understand, the idiographic flow in the embodiment of the present invention is described below, referring to Fig. 1, of the invention A kind of one embodiment for the verification method for clicking graphical verification code may include in embodiment:
100th, the checking request that different application end background system is sent is received;
Every suit needs the application system of graphical verification code often individually to develop a set of graphical verification code side in existing scheme Case, different application systems correspond to different picture checking systems, and this framework mode can waste development cost and network system Resource, in view of this, the framework of a picture checking system, checking clothes are shared in the embodiment of the present invention using multiple application systems Business system can receive the checking request of application end background system corresponding to multiple different application systems, it is allowed to different application system System can set institute using the graphical verification code with different parameters information, different application systems in the checking request that it sends The graphical verification code parameter information needed, graphical verification code parameter information can include the size of graphical verification code, picture complexity, Noise rank etc., specific graphical verification code parameter information can reasonably be set according to the demand of application system, herein Do not limit.
200th, according to graphical verification code parameter information generate graphical verification code and it is corresponding click operation instruction information, and will Graphical verification code and the corresponding operation instruction information that clicks are sent to corresponding intended application end background system;
After the checking request that intended application end background system is sent is received, authentication server can be according to figure Identifying code parameter information generate graphical verification code and it is corresponding click operation instruction information, and by graphical verification code and corresponding point Selection operation configured information is sent to corresponding intended application end background system, and it is pre- that this clicks operation instruction information instruction point selection operation Step Information is put, to allow targeted customer to carry out verification operation according to operation instruction information is clicked.
Further, referring to Fig. 2, Fig. 2 is the refinement step schematic diagram of step 200 in Fig. 1.As a kind of possible reality Mode is applied, step 200 may include:
201st, a Target Photo is randomly selected from context vault as background picture, and random drafting on background picture Speckle patterns;
Authentication server can randomly select one according to graphical verification code parameter information from context vault and meet the requirements Target Photo as background picture, and on background picture at random draw speckle patterns, further, verified in the present embodiment Service system can be that each checking request distributes different background pictures, it is ensured that graphical verification code is mutually obscured.
202nd, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;
Authentication server can be with the random Chinese for obtaining the first preset number in individual Chinese character more than 20000 in GBK Chinese character basies Word forms first set, and specific first preset number can determine according to graphical verification code parameter information, can also be according to testing The default setting of card service system determines the first preset number, does not limit herein specifically.
203rd, font information corresponding to the Chinese character random selection respectively in first set, and will be corresponding according to font information Chinese character be plotted in different interim painting canvas;
In order to ensure graphical verification code is mutually obscured, authentication server can randomly choose the first preset number font letter Breath, Chinese character in first set is drawn respectively into different interim painting canvas according to the first preset number font information of selection, Specifically, font information can include the one or more in font size, font style, font color, the font anglec of rotation, Do not limit herein.
Optionally, authentication server can also be further by pi and sinusoidal calculations, to each interim painting canvas Distort and stretch processing, the word allowed in painting canvas can not identify quickly through in general machine recognition technology substantially, Improve the security of graphical verification code checking.
204th, the canvas coordinate point of the first preset number is randomly choosed on background picture, and interim painting canvas is drawn respectively To at canvas coordinate point, graphical verification code is formed;
After the Chinese character in first set is plotted into interim painting canvas, authentication server can on background picture with Machine selects the canvas coordinate point of the first preset number, and the interim painting canvas in step 203 is plotted at canvas coordinate point respectively, Form graphical verification code.
Optionally, in order to further ensure that graphical verification code is mutually obscured, increase in general machine recognition technology and know The difficulty of other graphical verification code, after interim painting canvas is plotted at canvas coordinate point respectively, authentication server can be with The point coordinates of preset number is generated at random in background picture, and is generated and corresponded in the background picture according to different font informations Noise.
Optionally, authentication server can also be further according to the font color of target characters, in target characters By the use of approximate color draw different length straight line or curve as interfering line, the species of interfering line can include solid line, dotted line, short The class style of horizontal line three, specific interfering line form do not limit herein.
205th, the different Chinese character of the second preset number is randomly selected in sequence from first set as target characters shape Into second set;
After the Chinese character in choosing first set, authentication server can also be random in sequence from first set The different Chinese character for choosing the second preset number forms second set as target characters, and specific second preset number can basis Graphical verification code parameter information determines, can also determine the second preset number according to the default setting of authentication server, only needs Ensure that the second preset number is not more than the first preset number, specific second preset number does not limit herein.
206th, according in second set and in second set target characters be sequentially generated graphical verification code corresponding to click Operation instruction information.
It is determined that after the Chinese character of second set, authentication server can be according to mesh in second set and in second set Being sequentially generated corresponding to graphical verification code for Chinese character of mark clicks operation instruction information, specifically, for example, referring to Fig. 3, when first Gather and be randomly selected to be 5 Chinese characters, respectively " striking ", " bullet ", " quarrel ", " cabin ", " basin ", the Chinese character in second set is in sequence Be followed successively by " striking ", " basin ", " bullet ", this click operation instruction information can be " please click on successively in order " striking " in figure below, Three words of " basin ", " bullet ":", it can also be " striking ", " basin ", " bullet " three arranged in sequence that this, which clicks operation instruction information, Word, corresponding application end background system can generate according to these three words and more specifically click operation instruction information, it is possible to understand that , the Chinese in the specific first set and second set used in example for clicking operation instruction information shown in above-mentioned Fig. 3 What the number of word was merely exemplary, do not limit herein specifically.Refer in generation graphical verification code and corresponding selection operation After showing information, graphical verification code and the corresponding operation instruction information that clicks can be sent to corresponding mesh by authentication server Application end background system is marked, this clicks operation instruction information instruction point selection operation initialization step information, to cause targeted customer can With according to click operation instruction information carry out verification operation.
In the present embodiment, authentication server according to font, color, line by disturbing, point interference, ambient interferences, word Picture distortion, rotation etc. technology, to graphical verification code set various dimensions noise disturb, prevent identifying code by rogue program or from Dynamicization program carries out automatic identification, adds the security of graphical verification code checking.
300th, checking information corresponding to savepoint selection operation configured information;
After graphical verification code is generated, checking information corresponding to operation instruction information can be preserved, the checking information can With including a selection operation initialization step information and pre-set co-ordinate information.
Specifically, corresponding to the embodiment shown in Fig. 2, this selection operation initialization step information can include in second set Chinese character order information, the pre-set co-ordinate information can include second set in Chinese character coordinate information.
400th, receive intended application end background system feedback clicks operation information;
Graphical verification code and the corresponding operation instruction information that clicks are sent to corresponding intended application by authentication server After holding background system, corresponding intended application end background system can feed back it to corresponding application end foreground system and receive Graphical verification code and it is corresponding click operation instruction information, to allow the targeted customer of application end foreground system according to point Selection operation configured information carries out clicking operation on graphical verification code, and corresponding application end foreground system can be according to targeted customer Click operating procedure and click and click operation information corresponding to coordinate information generation, and pass through corresponding intended application end backstage This is clicked operation information and passes to authentication server by system, further to be verified.
500th, judge to click whether operation information matches with checking information, if matching, judge that targeted customer is proved to be successful, If mismatching, targeted customer's authentication failed is judged.
Receive intended application end background system feedback click operation information after, authentication server can basis This clicks operation information and judges that targeted customer clicks whether operating procedure matches with checking information, if matching, judges target User's checking success, if mismatching, judge targeted customer's authentication failed.
Optionally, corresponding to the embodiment shown in Fig. 2, as a kind of possible embodiment, authentication server judges Targeted customer clicks whether operating procedure matches with checking information, including:
If the coordinate points for clicking coordinate points and the target characters in second set of the point selection operation of targeted customer mismatch, Or, the order of the target characters in the sequencing and second set that click coordinate points of the point selection operation of targeted customer is not Match somebody with somebody, then judge that targeted customer clicks operating procedure and mismatched with checking information;
If the coordinate points for clicking coordinate points and the target characters in second set of the point selection operation of targeted customer match, And the order of the target characters in the sequencing and second set that click coordinate points of the point selection operation of targeted customer matches, Then judge that targeted customer clicks operating procedure and matched with checking information.
Specifically, authentication server can first judge the point selection operation of targeted customer whether click coordinate points with second The coordinate points of target characters in set match;Then, the priority for clicking coordinate points of the point selection operation of targeted customer is judged Whether order matches with the orders of the target characters in second set, finally, is drawn according to judged result comprehensive analysis twice The result of targeted customer.
It is understood that in various embodiments of the present invention, the size of the sequence number of above steps is not meant to The priority of execution sequence, the execution sequence of each step should be determined with its function and internal logic, without tackling the embodiment of the present invention Implementation process form any restriction.
In the present embodiment, included in the checking request that authentication server can be sent according to different application end background system Graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing scheme, this Multiple application systems can share a set of checking system in inventive embodiments, save development cost and network system resources, corresponding Intended application end background system can be to point selection operation of the authentication server feedback target user on graphical verification code Step generation clicks operation information, and the authentication server can judge targeted customer's point selection operation according to operation information is clicked Whether match with checking information, and then determine that whether targeted customer is proved to be successful, relative to existing scheme, only need user to carry out Point selection operation, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, without defeated in verification process Enter with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is authenticated The difficulty of journey, and then add the security of graphical verification code verification process.Above-described embodiment is to one in the embodiment of the present invention The flow for the verification method that kind clicks graphical verification code is described, in order to make it easy to understand, being used below in conjunction with specific A kind of verification method for clicking graphical verification code in the embodiment of the present invention is described in detail example, referring to Fig. 4, this hair One of a kind of verification method for clicking graphical verification code in bright embodiment specifically may include with example:
In the present embodiment, realize the specific system architecture of the verification method based on graphical verification code as shown in figure 4, system by Application end component 30 and authentication server 40 form, wherein:
Application end component 30 is by front end SDK (Software Development Kit, the developing instrument collection of application software Close) 301 and backstage access SDK 302 form, wherein front end SDK 301 can include WEB SDK 3011, Android SDK 3012, IOS SDK 3013.Front end SDK 301 is used for the work(for providing website or the calling identifying code service of the Internet, applications front end Can, backstage accesses SDK 302 and is used to realize website or the Internet, applications backstage and the service of identifying code authentication server interface Docking.After corresponding component need to be only integrated into project by application developer, simply call several line codes can complete with The docking of identifying code high in the clouds verification platform, realize the generation, display and verifying function of application program verification code.
Specifically, WEB SDK 3011 are used to realize enterprise web site, portal website, the checking code check of the Internet, applications, The system of the present invention provides corresponding JavaScript storehouses, and function collection is carried out for website and Internet application system developer Into.
Android SDK 3012 are used for the identifying code verifying function for realizing the application of Android platform, the present invention System provide corresponding platform jar file built-in function, for Android developer carry out function integrate.
IOS SDK 3013 are used for the identifying code verifying function for realizing the application of apple ios platform, and system of the invention carries For the header file and static library of corresponding platform, carry out function for apple developer and integrate.
Backstage access SDK 302 is used for backstage and the identifying code authentication server for realizing website or Internet application system The docking of interface.
Authentication server 40 by server interface 401, identifying code generation program 402, interference noise processing routine 403, Identifying code checking routine 404 and caching server 405 form, wherein,
Server interface 401, access function is applied for providing, and the interface pair of the generation of identifying code picture and verification is provided The entrance of connection function, i.e. application access identifying code function;
Identifying code generates program 402, for the parameter specified according to developer, graphical verification code corresponding to generation, After noise is handled, the application program for calling end is returned in a manner of binary stream;
Noise processing routine 403 is disturbed, for being subject to colored noise to the graphical verification code of generation, interfering line is handled and right Word in identifying code does torsional deformation processing;
Identifying code checking routine 404, after checkpoint of the user by clicking on graphical verification code, front end SDK component meetings Automatically record the operation information that clicks of user, and the verification of graphical verification code is completed according to preset rule;
Caching server 405, for realizing the interim storage of the checking information clicked in graphical verification code, the present embodiment In, it is preferred that the REDIS to increase income can be used as data cache server.
In the present embodiment, authentication server provides server interface for external service system, and operation system is not required to be concerned about Concrete implementation process, the various platform SDK that the system that developer need to only be applied by the present invention provides, you can by the present embodiment In graphical verification code it is integrated apply in the application of developer, saved development cost and network system resources.
It is understood that the verification method based on graphical verification code shown in the embodiment of the present invention can be used for interconnecting Checking in the scenes such as registration, login, information submission in net application, prevent attack or sudden and violent of the rogue program to the Internet, applications Power cracks, and so as to effectively ensure the security of the Internet, applications business, specifically with scene, does not limit herein.
A kind of verification method for clicking graphical verification code in the embodiment of the present invention is described above-described embodiment, under A kind of checking system for clicking graphical verification code in the embodiment of the present invention will be described for face, referring to Fig. 5, the present invention is real Applying a kind of one embodiment for the checking system for clicking graphical verification code in example may include:
At least one application end background system 70, application end foreground system 60, authentication server 50, wherein,
Authentication server 50 includes the first receiving module 501, for receiving testing for different application end background system transmission Card is asked, and graphical verification code parameter information is included in checking request;
Authentication server also includes generation module 502, for generating graphic verification according to graphical verification code parameter information Code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;
Authentication server also includes memory module 505, for preserving checking information corresponding to operation instruction information, checking Information includes clicking operation initialization step information and pre-set co-ordinate information;
Application end background system 70 be used to receiving corresponding to application end foreground system 60 send click operation information, operation Information clicks operating procedure generation according to targeted customer on graphical verification code;
Authentication server 50 also includes the second receiving module 503, for receiving intended application end background system feedback Click operation information;
Authentication server 50 also includes judge module 504, for judge click operation information whether with checking information Match somebody with somebody, if matching, judge that targeted customer is proved to be successful, if mismatching, judge targeted customer's authentication failed.
It is understood that the corresponding relation of application end background system shown in Fig. 5 and application end foreground system is only It is exemplary, an application end background system can correspond to one or more application end foreground systems, not limit herein specifically It is fixed.
In the present embodiment, included in the checking request that authentication server can be sent according to different application end background system Graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing scheme, this Multiple application systems can share a set of checking system in inventive embodiments, save development cost and network system resources, corresponding Intended application end background system can be to point selection operation of the authentication server feedback target user on graphical verification code Step generation clicks operation information, and the authentication server can judge targeted customer's point selection operation according to operation information is clicked Whether match with checking information, and then determine that whether targeted customer is proved to be successful, relative to existing scheme, only need user to carry out Point selection operation, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, without defeated in verification process Enter with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is authenticated The difficulty of journey, and then add the security of graphical verification code verification process.
Optionally,, can be with referring to Fig. 6, the generation module 502 in the present embodiment as a kind of possible embodiment Including:
First choice unit 5021, match for randomly selecting one from context vault with graphical verification code parameter information Target Photo as background picture, and on background picture at random draw speckle patterns;
Second selecting unit 5022, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first Set;
3rd selecting unit 5023, for being respectively font information corresponding to the Chinese character random selection in first set, and Corresponding Chinese character is plotted in different interim painting canvas according to font information, font information include font size, font style, One or more in font color, the font anglec of rotation;
First generation unit 5024, for randomly choosing the canvas coordinate point of the first preset number on background picture, and Interim painting canvas is plotted at canvas coordinate point respectively, generates graphical verification code;
4th selecting unit 5025, for randomly selecting the different Chinese of the second preset number in sequence from first set Word forms second set as target characters;
Second generation unit 5026, for being sequentially generated figure according to target characters in second set and in second set Operation instruction information is clicked corresponding to identifying code.
Optionally, as a kind of possible embodiment, the generation module 502 in the present embodiment, may further include:
Painting canvas processing unit 5027, for before interim painting canvas is plotted at canvas coordinate point respectively, passing through circumference Rate and sinusoidal calculations, are distorted and stretch processing to each interim painting canvas.
Optionally,, can be with referring to Fig. 7, the generation module 502 in the present embodiment as a kind of possible embodiment Further comprise:
Noise generation unit 5028, for generating the point coordinates of preset number at random in background picture, and according to different Font information generated in the background picture corresponding to noise;
Interfering line generation unit 5029, for the font color according to target characters, with approximate color in target characters The straight line or curve for drawing different length include solid line, dotted line, the class style of strigula three as interfering line, the species of interfering line.
Optionally,, can be with referring to Fig. 8, the judge module 504 in the present embodiment as a kind of possible embodiment Including:
First judging unit 5041, if the point selection operation of targeted customer clicks coordinate points and the target Chinese in second set The coordinate points of word mismatch, or, the mesh in the sequencing and second set that click coordinate points of the point selection operation of targeted customer The order for marking Chinese character mismatches, then decision-point selection operation information mismatches with checking information;If the point selection operation of targeted customer The coordinate points for clicking coordinate points and the target characters in second set match, and the point selection operation of targeted customer clicks coordinate Whether the sequencing of point matches with the orders of the target characters in second set, then decision-point selection operation information is believed with checking Manner of breathing matches;
Second judging unit 5042, is matched if clicking operation information with checking information, judges that targeted customer is proved to be successful, If clicking operation information to mismatch with checking information, targeted customer's authentication failed is judged.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description, The specific work process of device and unit, the corresponding process in preceding method embodiment is may be referred to, will not be repeated here.
In several embodiments provided herein, it should be understood that disclosed system, apparatus and method can be with Realize by another way.For example, device embodiment described above is only schematical, for example, the unit Division, only a kind of division of logic function, can there is other dividing mode, such as multiple units or component when actually realizing Another system can be combined or be desirably integrated into, or some features can be ignored, or do not perform.It is another, it is shown or The mutual coupling discussed or direct-coupling or communication connection can be the indirect couplings by some interfaces, device or unit Close or communicate to connect, can be electrical, mechanical or other forms.
The unit illustrated as separating component can be or may not be physically separate, show as unit The part shown can be or may not be physical location, you can with positioned at a place, or can also be distributed to multiple On NE.Some or all of unit therein can be selected to realize the mesh of this embodiment scheme according to the actual needs 's.
In addition, each functional unit in each embodiment of the present invention can be integrated in a processing unit, can also That unit is individually physically present, can also two or more units it is integrated in a unit.Above-mentioned integrated list Member can both be realized in the form of hardware, can also be realized in the form of SFU software functional unit.
If the integrated unit is realized in the form of SFU software functional unit and is used as independent production marketing or use When, it can be stored in a computer read/write memory medium.Based on such understanding, technical scheme is substantially The part to be contributed in other words to prior art or all or part of the technical scheme can be in the form of software products Embody, the computer software product is stored in a storage medium, including some instructions are causing a computer Equipment (can be personal computer, server, or network equipment etc.) performs the complete of each embodiment methods described of the present invention Portion or part steps.And foregoing storage medium includes:USB flash disk, mobile hard disk, read-only storage (ROM, Read-Only Memory), random access memory (RAM, Random Access Memory), magnetic disc or CD etc. are various can store journey The medium of sequence code.
Described above, the above embodiments are merely illustrative of the technical solutions of the present invention, rather than its limitations;Although with reference to before Embodiment is stated the present invention is described in detail, it will be understood by those within the art that:It still can be to preceding State the technical scheme described in each embodiment to modify, or equivalent substitution is carried out to which part technical characteristic;And these Modification is replaced, and the essence of appropriate technical solution is departed from the spirit and scope of various embodiments of the present invention technical scheme.

Claims (10)

  1. A kind of 1. verification method for clicking graphical verification code, it is characterised in that including:
    The checking request that different application end background system is sent is received, is believed in the checking request comprising graphical verification code parameter Breath;
    According to the graphical verification code parameter information generate targeted graphical identifying code and it is corresponding click operation instruction information, concurrently Intended application end background system corresponding to giving;
    Preserve checking information corresponding to the operation instruction information, the checking information include point selection operation initialization step information and Pre-set co-ordinate information;
    Receive intended application end background system feedback clicks operation information, and the operation information that clicks is according to targeted customer Clicking operating procedure and clicking coordinate information on the graphical verification code generates;
    Click whether operation information matches with the checking information described in judgement, if matching, judge targeted customer's checking Success, if mismatching, judge targeted customer's authentication failed.
  2. 2. according to the method for claim 1, it is characterised in that described generated according to the graphical verification code parameter information is schemed Shape identifying code and it is corresponding click operation instruction information, including:
    A Target Photo to match with the graphical verification code parameter information is randomly selected from context vault as Background Piece, and draw speckle patterns at random on the background picture;
    The Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;
    Font information corresponding to Chinese character random selection in respectively described first set, and will be corresponding according to the font information Chinese character be plotted in different interim painting canvas, the font information include font size, font style, font color, font One or more in the anglec of rotation;
    The canvas coordinate point of first preset number is randomly choosed on the background picture, and the interim painting canvas is distinguished It is plotted at the canvas coordinate point, forms graphical verification code;
    Randomly select the different Chinese character of the second preset number in sequence from the first set and form the as target characters Two set;
    According in the second set and in the second set target characters be sequentially generated the graphical verification code corresponding to Click operation instruction information.
  3. 3. according to the method for claim 2, it is characterised in that the interim painting canvas is plotted to the picture respectively described Before at cloth coordinate points, methods described also includes:
    By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
  4. 4. according to the method for claim 2, it is characterised in that the interim painting canvas is plotted to the picture respectively described After at cloth coordinate points, methods described also includes:
    The point coordinates of preset number is generated at random in the background picture, and according to different font informations in the Background Noise corresponding to generation in piece;
    According to the font color of the target characters, in the target characters with approximate color draw different length straight line or Curve includes solid line, dotted line, the class style of strigula three as interfering line, the species of the interfering line.
  5. 5. the method according to any one of claim 2 to 4, it is characterised in that whether the judgement clicks operation information Matched with the checking information, including:
    If the coordinate points for clicking the target characters in coordinate points and the second set of the point selection operation of the targeted customer are not Matching, or, the sequencing for clicking coordinate points of the point selection operation of the targeted customer and the target Chinese in the second set The order of word is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;
    If the coordinate points phase for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer Matching, and the targeted customer point selection operation the sequencing for clicking coordinate points whether with the target in the second set The order of Chinese character matches, then click operation information described in judgement matches with the checking information.
  6. A kind of 6. checking system for clicking graphical verification code, it is characterised in that including:
    At least one application end background system, application end foreground system, authentication server, wherein,
    The authentication server includes the first receiving module, please for receiving the checking that different application end background system is sent Ask, graphical verification code parameter information is included in the checking request;
    The authentication server also includes generation module, for generating graphic verification according to the graphical verification code parameter information Code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;
    The authentication server also includes memory module, for preserving checking information corresponding to the operation instruction information, institute Stating checking information includes point selection operation initialization step information and pre-set co-ordinate information;
    The application end background system be used to receiving corresponding to application end foreground system send click operation information, the operation Information generates according to targeted customer's clicking operating procedure and clicking coordinate information on the graphical verification code;
    The authentication server also includes the second receiving module, for receiving the institute of intended application end background system feedback State and click operation information;
    The authentication server also includes judge module, for judge it is described click operation information whether with the checking information Matching, if matching, judges that the targeted customer is proved to be successful, if mismatching, judge targeted customer's authentication failed.
  7. 7. system according to claim 6, it is characterised in that the generation module, including:
    First choice unit, for randomly selecting a mesh to match with the graphical verification code parameter information from context vault Piece mark on a map as background picture, and draws speckle patterns at random on the background picture;
    Second selecting unit, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first set;
    3rd selecting unit, for being respectively font information corresponding to the Chinese character random selection in the first set, and according to Corresponding Chinese character is plotted in different interim painting canvas by the font information, and the font information includes font size, font One or more in style, font color, the font anglec of rotation;
    First generation unit, for randomly choosing the canvas coordinate point of first preset number on the background picture, and The interim painting canvas is plotted at the canvas coordinate point respectively, generates graphical verification code;
    4th selecting unit, the different Chinese character for randomly selecting the second preset number in sequence from the first set are made Second set is formed for target characters;
    Second generation unit, for according to being sequentially generated of target characters in the second set and in the second set Operation instruction information is clicked corresponding to graphical verification code.
  8. 8. system according to claim 7, it is characterised in that the generation module also includes:
    Painting canvas processing unit, for it is described the interim painting canvas is plotted at the canvas coordinate point respectively before, pass through Pi and sinusoidal calculations, are distorted and stretch processing to each interim painting canvas.
  9. 9. system according to claim 7, it is characterised in that the generation module also includes:
    Noise generation unit, for generating the point coordinates of preset number at random in the background picture, and according to different fonts Information generated in the background picture corresponding to noise;
    Interfering line generation unit, for the font color according to the target characters, with approximate color in the target characters The straight line or curve for drawing different length include solid line, dotted line, the class wind of strigula three as interfering line, the species of the interfering line Lattice.
  10. 10. the system according to any one of claim 7 to 9, it is characterised in that the judge module, including:
    First judging unit, if the point selection operation of the targeted customer clicks coordinate points and the target Chinese in the second set The coordinate points of word mismatch, or, the sequencing for clicking coordinate points and the described second collection of the point selection operation of the targeted customer The order of target characters in conjunction is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;It is if described The coordinate points for clicking coordinate points and the target characters in the second set of the point selection operation of targeted customer match, and described Targeted customer point selection operation the sequencing for clicking coordinate points whether the order with the target characters in the second set Match, then click operation information described in judgement matches with the checking information;
    Second judging unit, if the operation information that clicks matches with the checking information, judge targeted customer's checking Success, if the operation information that clicks mismatches with the checking information, judge targeted customer's authentication failed.
CN201711003786.2A 2017-10-24 2017-10-24 A kind of verification method and system for clicking graphical verification code Pending CN107563181A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201711003786.2A CN107563181A (en) 2017-10-24 2017-10-24 A kind of verification method and system for clicking graphical verification code

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201711003786.2A CN107563181A (en) 2017-10-24 2017-10-24 A kind of verification method and system for clicking graphical verification code

Publications (1)

Publication Number Publication Date
CN107563181A true CN107563181A (en) 2018-01-09

Family

ID=60987051

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201711003786.2A Pending CN107563181A (en) 2017-10-24 2017-10-24 A kind of verification method and system for clicking graphical verification code

Country Status (1)

Country Link
CN (1) CN107563181A (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109299602A (en) * 2018-08-08 2019-02-01 厦门大学嘉庚学院 Verification code generation method based on implicit figure
CN109618349A (en) * 2019-01-08 2019-04-12 中国联合网络通信集团有限公司 A kind of data transmission method and server
CN110399712A (en) * 2019-07-31 2019-11-01 网易(杭州)网络有限公司 Validation-cross method, apparatus, medium and calculating equipment based on identifying code
CN110808961A (en) * 2019-10-16 2020-02-18 上海易点时空网络有限公司 Data processing method and device for security verification
CN111160369A (en) * 2019-12-25 2020-05-15 携程旅游信息技术(上海)有限公司 Method, system, electronic device and storage medium for cracking Chinese character verification code
CN111783062A (en) * 2020-05-28 2020-10-16 苏宁金融科技(南京)有限公司 Verification code identification method and device, computer equipment and storage medium
CN112352237A (en) * 2018-02-15 2021-02-09 惠尔丰公司 System and method for authentication code entry
CN112948799A (en) * 2021-01-28 2021-06-11 深圳市迅雷网文化有限公司 Method and related device for verifying graphic verification code
CN113505360A (en) * 2021-07-16 2021-10-15 湖南快乐阳光互动娱乐传媒有限公司 Verification code request processing method and related equipment
CN113535018A (en) * 2020-11-13 2021-10-22 厦门市和家健脑智能科技有限公司 Human-computer interaction method and device for evaluating cognitive speed

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101261669A (en) * 2007-03-09 2008-09-10 吴天际 A method for visual validation system based on mouse operation
CN103873481A (en) * 2014-03-31 2014-06-18 百度在线网络技术(北京)有限公司 Verification method, open platform, server end and verification system
CN104580109A (en) * 2013-10-24 2015-04-29 深圳市腾讯计算机系统有限公司 Method and device for generating click verification code
CN104852885A (en) * 2014-02-14 2015-08-19 腾讯科技(深圳)有限公司 Method, device and system for verifying verification code

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101261669A (en) * 2007-03-09 2008-09-10 吴天际 A method for visual validation system based on mouse operation
CN104580109A (en) * 2013-10-24 2015-04-29 深圳市腾讯计算机系统有限公司 Method and device for generating click verification code
CN104852885A (en) * 2014-02-14 2015-08-19 腾讯科技(深圳)有限公司 Method, device and system for verifying verification code
CN103873481A (en) * 2014-03-31 2014-06-18 百度在线网络技术(北京)有限公司 Verification method, open platform, server end and verification system

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112352237A (en) * 2018-02-15 2021-02-09 惠尔丰公司 System and method for authentication code entry
CN109299602A (en) * 2018-08-08 2019-02-01 厦门大学嘉庚学院 Verification code generation method based on implicit figure
CN109618349A (en) * 2019-01-08 2019-04-12 中国联合网络通信集团有限公司 A kind of data transmission method and server
CN110399712A (en) * 2019-07-31 2019-11-01 网易(杭州)网络有限公司 Validation-cross method, apparatus, medium and calculating equipment based on identifying code
CN110808961A (en) * 2019-10-16 2020-02-18 上海易点时空网络有限公司 Data processing method and device for security verification
CN110808961B (en) * 2019-10-16 2022-02-01 上海易点时空网络有限公司 Data processing method and device for security verification
CN111160369A (en) * 2019-12-25 2020-05-15 携程旅游信息技术(上海)有限公司 Method, system, electronic device and storage medium for cracking Chinese character verification code
CN111160369B (en) * 2019-12-25 2024-03-05 携程旅游信息技术(上海)有限公司 Method, system, electronic equipment and storage medium for cracking Chinese character verification code
CN111783062A (en) * 2020-05-28 2020-10-16 苏宁金融科技(南京)有限公司 Verification code identification method and device, computer equipment and storage medium
CN111783062B (en) * 2020-05-28 2023-05-02 苏宁金融科技(南京)有限公司 Verification code identification method, device, computer equipment and storage medium
CN113535018A (en) * 2020-11-13 2021-10-22 厦门市和家健脑智能科技有限公司 Human-computer interaction method and device for evaluating cognitive speed
CN113535018B (en) * 2020-11-13 2024-03-22 厦门市和家健脑智能科技有限公司 Human-computer interaction method and device for evaluating cognitive speed
CN112948799A (en) * 2021-01-28 2021-06-11 深圳市迅雷网文化有限公司 Method and related device for verifying graphic verification code
CN112948799B (en) * 2021-01-28 2024-02-27 深圳市迅雷网文化有限公司 Verification method of graphic verification code and related device thereof
CN113505360A (en) * 2021-07-16 2021-10-15 湖南快乐阳光互动娱乐传媒有限公司 Verification code request processing method and related equipment

Similar Documents

Publication Publication Date Title
CN107563181A (en) A kind of verification method and system for clicking graphical verification code
CN111401558B (en) Data processing model training method, data processing device and electronic equipment
CN108509915A (en) The generation method and device of human face recognition model
CN104954353B (en) The method of calibration and device of APK file bag
CN108875404B (en) Data desensitization method and device based on machine learning and storage medium
CN107251033A (en) System and method for carrying out active user checking in online education
CN102006163A (en) User authentication method, device and server
CN105933266A (en) Verification method and server
CN108256303A (en) Electronic device, auth method and storage medium
CN105913245A (en) Internet payment method, device and server
CN105956469A (en) Method and device for identifying file security
CN104184709A (en) Verification method, device, server, service data center and system
CN110288755A (en) The invoice method of inspection, server and storage medium based on text identification
CN108491812A (en) The generation method and device of human face recognition model
CN109871791A (en) Image processing method and device
US20100024018A1 (en) Keyboard Display Posing An Identification Challenge For An Automated Agent
CN112968797B (en) Application configuration method, system and storage medium of cloud service software
CN108234441A (en) Determine method, apparatus, electronic equipment and the storage medium of forgery access request
CN112272328B (en) Bullet screen recommendation method and related device
US8510809B2 (en) Network authentication system and method
CN105577692A (en) Website login authentication method and device
CN110795706B (en) Hash-based verification method, equipment, storage medium and device
CN106161338A (en) For verifying the method and device of user identity
US20220335114A1 (en) Verification method and verification apparatus based on attacking image style transfer
CN110543754A (en) memory, verification code implementation method, device and equipment

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20180109